ruby-rack

Direct Vulnerabilities

Known vulnerabilities in the ruby-rack package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
CRLF Injection

*
  • L
Resource Exhaustion

*
  • L
Interpretation Conflict

*
  • L
Resource Exhaustion

*
  • L
Permissive Regular Expression

*
  • L
Incorrect Behavior Order: Validate Before Canonicalize

*
  • L
Resource Exhaustion

*
  • L
Resource Exhaustion

*
  • L
Partial Comparison

*
  • L
Permissive Regular Expression

*
  • M
Improper Validation of Syntactic Correctness of Input

*
  • L
Improper Handling of Length Parameter Inconsistency

*
  • L
Interpretation Conflict

*
  • L
Directory Traversal

<2.2.22-0+deb12u1
  • L
Cross-site Scripting (XSS)

<2.2.22-0+deb12u1
  • M
Information Exposure

<2.2.20-0+deb12u1
  • L
Resource Exhaustion

<2.2.20-0+deb12u1
  • L
Resource Exhaustion

<2.2.20-0+deb12u1
  • L
Resource Exhaustion

<2.2.20-0+deb12u1
  • L
Resource Exhaustion

<2.2.20-0+deb12u1
  • L
Resource Exhaustion

<2.2.20-0+deb12u1
  • H
Resource Exhaustion

<2.2.20-0+deb12u1
  • M
Race Condition

<2.2.20-0+deb12u1
  • L
Directory Traversal

<2.2.13-1~deb12u1
  • H
CRLF Injection

<2.2.13-1~deb12u1
  • M
CRLF Injection

<2.2.13-1~deb12u1
  • H
Inefficient Regular Expression Complexity

<2.2.6.4-1+deb12u1
  • H
CVE-2024-26141

<2.2.6.4-1+deb12u1
  • H
Inefficient Regular Expression Complexity

<2.2.6.4-1+deb12u1
  • M
CVE-2023-27539

<2.2.6.4-1
  • H
Allocation of Resources Without Limits or Throttling

<2.2.6.4-1
  • H
Inefficient Regular Expression Complexity

<2.2.4-3
  • H
Inefficient Regular Expression Complexity

<2.2.4-3
  • H
Inefficient Regular Expression Complexity

<2.2.4-3
  • H
Inefficient Regular Expression Complexity

<2.2.4-1
  • C
CVE-2022-30123

<2.2.4-1
  • H
Improper Input Validation

<2.1.1-6
  • H
Directory Traversal

<2.1.1-5
  • M
Information Exposure

<2.1.1-2
  • M
Cross-site Scripting (XSS)

<1.6.4-6
  • M
Improper Data Handling

<1.5.2-4
  • M
Out-of-Bounds

<1.4.1-2.1
  • M
CVE-2013-0184

<1.4.1-2.1
  • M
CVE-2012-6109

<1.4.1-2.1
  • M
Directory Traversal

<1.4.1-2.1
  • M
CVE-2013-0263

<1.4.1-2.1
  • M
Cryptographic Issues

<1.4.0-1